Security at ScreenCraft

Your data protection is our priority. We implement enterprise-grade security measures to keep your data safe.

Infrastructure Security

Hosted on Hetzner

Germany/EU-based data centers with strict privacy laws

Cloudflare CDN

Enterprise DDoS protection and global edge network

Docker Container Isolation

Each service runs in isolated containers

Regular Security Updates

Automated patching and dependency updates

Data Protection

Encryption at rest (AES-256)
Encryption in transit (TLS 1.3)
No plaintext credential storage
Automatic data expiration
GDPR compliant

What We Never Do

Store your authentication headers
Store cookies or session data
Log request bodies
Share data with third parties
Train AI on your content

Rendering Isolation

Isolated Environment

Each screenshot runs in its own sandbox

No Cross-Customer Access

Complete data separation between users

Ephemeral Instances

Browser instances destroyed after each request

API Security

API Key Authentication

Secure token-based access control with scoped permissions

Rate Limiting

Protection against abuse and denial-of-service attacks

Request Validation

Strict input validation and sanitization on all endpoints

CORS Protection

Cross-origin request safeguards and domain whitelisting

Responsible Disclosure

We appreciate security researchers who help us keep ScreenCraft secure. If you discover a vulnerability, please report it responsibly.

Report a Vulnerability

We will acknowledge your report within 48 hours and work with you to understand and resolve the issue.

Response within 48 hours
Safe harbor for good-faith research

Additional Resources

Stop wrestling with Puppeteer.
Start shipping screenshots.

Join 2,000+ developers who chose the easy path.

Free forever tier • No credit card • Setup in 2 minutes